NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5786  CVE-2008-6055  PreProjects Pre Classified Listings stores pclasp.mdb under the web root with insufficient access control, which allows remote attackers to obtain passwords via a direct request.    Medium  2017-01-03  2009-02-04  View
5787  CVE-2008-6056  Multiple cross-site scripting (XSS) vulnerabilities in World Recipe 2.11 allow remote attackers to inject arbitrary web script or HTML via the (1) n parameter to emailrecipe.aspx, (2) id parameter to recipedetail.aspx, and the (3) catid parameter to validatefieldlength.aspx.    4.3  Medium  2017-01-03  2009-04-21  View
5788  CVE-2008-6057  Doug Luxem Liberum Help Desk 0.97.3 stores db/helpdesk2000.mdb under the web root with insufficient access control, which allows remote attackers to obtain passwords via a direct request.    Medium  2017-01-03  2009-02-04  View
5789  CVE-2008-6058  Syslserve 1.058 and earlier, and probably 1.059, allows remote attackers to cause a denial of service (hang) via a crafted UDP Syslog packet.    Medium  2017-01-03  2009-02-05  View
5790  CVE-2008-6059  xml/XMLHttpRequest.cpp in WebCore in WebKit before r38566 does not properly restrict access from web pages to the (1) Set-Cookie and (2) Set-Cookie2 HTTP response headers, which allows remote attackers to obtain sensitive information from cookies via XMLHttpRequest calls, related to the HTTPOnly protection mechanism.    Medium  2017-01-03  2009-03-04  View

Page 1158 of 17672, showing 5 records out of 88360 total, starting on record 5786, ending on 5790

Actions